evp.h 67.7 KB
Newer Older
R
Rich Salz 已提交
1
/*
2
 * Copyright 1995-2017 The OpenSSL Project Authors. All Rights Reserved.
3
 *
R
Rich Salz 已提交
4 5 6 7
 * Licensed under the OpenSSL license (the "License").  You may not use
 * this file except in compliance with the License.  You can obtain a copy
 * in the file LICENSE in the source distribution or at
 * https://www.openssl.org/source/license.html
8 9 10
 */

#ifndef HEADER_ENVELOPE_H
11 12
# define HEADER_ENVELOPE_H

R
Rich Salz 已提交
13
# include <openssl/opensslconf.h>
14 15
# include <openssl/ossl_typ.h>
# include <openssl/symhacks.h>
16
# include <openssl/bio.h>
17
# include <openssl/evperr.h>
18

19 20 21 22
# define EVP_MAX_MD_SIZE                 64/* longest known is SHA512 */
# define EVP_MAX_KEY_LENGTH              64
# define EVP_MAX_IV_LENGTH               16
# define EVP_MAX_BLOCK_LENGTH            32
23

24
# define PKCS5_SALT_LEN                  8
25
/* Default PKCS#5 iteration count */
26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43
# define PKCS5_DEFAULT_ITER              2048

# include <openssl/objects.h>

# define EVP_PK_RSA      0x0001
# define EVP_PK_DSA      0x0002
# define EVP_PK_DH       0x0004
# define EVP_PK_EC       0x0008
# define EVP_PKT_SIGN    0x0010
# define EVP_PKT_ENC     0x0020
# define EVP_PKT_EXCH    0x0040
# define EVP_PKS_RSA     0x0100
# define EVP_PKS_DSA     0x0200
# define EVP_PKS_EC      0x0400

# define EVP_PKEY_NONE   NID_undef
# define EVP_PKEY_RSA    NID_rsaEncryption
# define EVP_PKEY_RSA2   NID_rsa
D
Dr. Stephen Henson 已提交
44
# define EVP_PKEY_RSA_PSS NID_rsassaPss
45 46 47 48 49 50 51 52 53 54
# define EVP_PKEY_DSA    NID_dsa
# define EVP_PKEY_DSA1   NID_dsa_2
# define EVP_PKEY_DSA2   NID_dsaWithSHA
# define EVP_PKEY_DSA3   NID_dsaWithSHA1
# define EVP_PKEY_DSA4   NID_dsaWithSHA1_2
# define EVP_PKEY_DH     NID_dhKeyAgreement
# define EVP_PKEY_DHX    NID_dhpublicnumber
# define EVP_PKEY_EC     NID_X9_62_id_ecPublicKey
# define EVP_PKEY_HMAC   NID_hmac
# define EVP_PKEY_CMAC   NID_cmac
D
Dr. Stephen Henson 已提交
55
# define EVP_PKEY_TLS1_PRF NID_tls1_prf
A
Alessandro Ghedini 已提交
56
# define EVP_PKEY_HKDF   NID_hkdf
57
# define EVP_PKEY_POLY1305 NID_poly1305
58
# define EVP_PKEY_SIPHASH NID_siphash
59 60
# define EVP_PKEY_X25519 NID_X25519
# define EVP_PKEY_ED25519 NID_ED25519
61 62

#ifdef  __cplusplus
63 64 65
extern "C" {
#endif

66 67 68 69 70 71
# define EVP_PKEY_MO_SIGN        0x0001
# define EVP_PKEY_MO_VERIFY      0x0002
# define EVP_PKEY_MO_ENCRYPT     0x0004
# define EVP_PKEY_MO_DECRYPT     0x0008

# ifndef EVP_MD
72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106
EVP_MD *EVP_MD_meth_new(int md_type, int pkey_type);
EVP_MD *EVP_MD_meth_dup(const EVP_MD *md);
void EVP_MD_meth_free(EVP_MD *md);

int EVP_MD_meth_set_input_blocksize(EVP_MD *md, int blocksize);
int EVP_MD_meth_set_result_size(EVP_MD *md, int resultsize);
int EVP_MD_meth_set_app_datasize(EVP_MD *md, int datasize);
int EVP_MD_meth_set_flags(EVP_MD *md, unsigned long flags);
int EVP_MD_meth_set_init(EVP_MD *md, int (*init)(EVP_MD_CTX *ctx));
int EVP_MD_meth_set_update(EVP_MD *md, int (*update)(EVP_MD_CTX *ctx,
                                                     const void *data,
                                                     size_t count));
int EVP_MD_meth_set_final(EVP_MD *md, int (*final)(EVP_MD_CTX *ctx,
                                                   unsigned char *md));
int EVP_MD_meth_set_copy(EVP_MD *md, int (*copy)(EVP_MD_CTX *to,
                                                 const EVP_MD_CTX *from));
int EVP_MD_meth_set_cleanup(EVP_MD *md, int (*cleanup)(EVP_MD_CTX *ctx));
int EVP_MD_meth_set_ctrl(EVP_MD *md, int (*ctrl)(EVP_MD_CTX *ctx, int cmd,
                                                 int p1, void *p2));

int EVP_MD_meth_get_input_blocksize(const EVP_MD *md);
int EVP_MD_meth_get_result_size(const EVP_MD *md);
int EVP_MD_meth_get_app_datasize(const EVP_MD *md);
unsigned long EVP_MD_meth_get_flags(const EVP_MD *md);
int (*EVP_MD_meth_get_init(const EVP_MD *md))(EVP_MD_CTX *ctx);
int (*EVP_MD_meth_get_update(const EVP_MD *md))(EVP_MD_CTX *ctx,
                                                const void *data,
                                                size_t count);
int (*EVP_MD_meth_get_final(const EVP_MD *md))(EVP_MD_CTX *ctx,
                                               unsigned char *md);
int (*EVP_MD_meth_get_copy(const EVP_MD *md))(EVP_MD_CTX *to,
                                              const EVP_MD_CTX *from);
int (*EVP_MD_meth_get_cleanup(const EVP_MD *md))(EVP_MD_CTX *ctx);
int (*EVP_MD_meth_get_ctrl(const EVP_MD *md))(EVP_MD_CTX *ctx, int cmd,
                                              int p1, void *p2);
107

108
/* digest can only handle a single block */
109
#  define EVP_MD_FLAG_ONESHOT     0x0001
110

111 112
/* DigestAlgorithmIdentifier flags... */

113
#  define EVP_MD_FLAG_DIGALGID_MASK               0x0018
114 115 116

/* NULL or absent parameter accepted. Use NULL */

117
#  define EVP_MD_FLAG_DIGALGID_NULL               0x0000
118 119 120

/* NULL or absent parameter accepted. Use NULL for PKCS#1 otherwise absent */

121
#  define EVP_MD_FLAG_DIGALGID_ABSENT             0x0008
122 123 124

/* Custom handling via ctrl */

125
#  define EVP_MD_FLAG_DIGALGID_CUSTOM             0x0018
126

127
/* Note if suitable for use in FIPS mode */
128
#  define EVP_MD_FLAG_FIPS        0x0400
D
Dr. Stephen Henson 已提交
129

130 131
/* Digest ctrls */

132 133
#  define EVP_MD_CTRL_DIGALGID                    0x1
#  define EVP_MD_CTRL_MICALG                      0x2
134 135 136

/* Minimum Algorithm specific ctrl value */

137
#  define EVP_MD_CTRL_ALG_CTRL                    0x1000
138

139 140
# endif                         /* !EVP_MD */

141 142
/* values for EVP_MD_CTX flags */

143 144 145 146 147
# define EVP_MD_CTX_FLAG_ONESHOT         0x0001/* digest update will be
                                                * called once only */
# define EVP_MD_CTX_FLAG_CLEANED         0x0002/* context has already been
                                                * cleaned */
# define EVP_MD_CTX_FLAG_REUSE           0x0004/* Don't free up ctx->md_data
148
                                                * in EVP_MD_CTX_reset */
149 150 151
/*
 * FIPS and pad options are ignored in 1.0.0, definitions are here so we
 * don't accidentally reuse the values for other purposes.
152
 */
153

154 155
# define EVP_MD_CTX_FLAG_NON_FIPS_ALLOW  0x0008/* Allow use of non FIPS
                                                * digest in FIPS mode */
156

157 158
/*
 * The following PAD options are also currently ignored in 1.0.0, digest
159 160 161
 * parameters are handled through EVP_DigestSign*() and EVP_DigestVerify*()
 * instead.
 */
162 163 164 165
# define EVP_MD_CTX_FLAG_PAD_MASK        0xF0/* RSA mode to use */
# define EVP_MD_CTX_FLAG_PAD_PKCS1       0x00/* PKCS#1 v1.5 mode */
# define EVP_MD_CTX_FLAG_PAD_X931        0x10/* X9.31 mode */
# define EVP_MD_CTX_FLAG_PAD_PSS         0x20/* PSS mode */
166

167 168 169
# define EVP_MD_CTX_FLAG_NO_INIT         0x0100/* Don't initialize md_data */
/*
 * Some functions such as EVP_DigestSign only finalise copies of internal
170 171 172 173
 * contexts so additional data can be included after the finalisation call.
 * This is inefficient if this functionality is not required: it is disabled
 * if the following flag is set.
 */
174 175
# define EVP_MD_CTX_FLAG_FINALISE        0x0200

176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220
EVP_CIPHER *EVP_CIPHER_meth_new(int cipher_type, int block_size, int key_len);
EVP_CIPHER *EVP_CIPHER_meth_dup(const EVP_CIPHER *cipher);
void EVP_CIPHER_meth_free(EVP_CIPHER *cipher);

int EVP_CIPHER_meth_set_iv_length(EVP_CIPHER *cipher, int iv_len);
int EVP_CIPHER_meth_set_flags(EVP_CIPHER *cipher, unsigned long flags);
int EVP_CIPHER_meth_set_impl_ctx_size(EVP_CIPHER *cipher, int ctx_size);
int EVP_CIPHER_meth_set_init(EVP_CIPHER *cipher,
                             int (*init) (EVP_CIPHER_CTX *ctx,
                                          const unsigned char *key,
                                          const unsigned char *iv,
                                          int enc));
int EVP_CIPHER_meth_set_do_cipher(EVP_CIPHER *cipher,
                                  int (*do_cipher) (EVP_CIPHER_CTX *ctx,
                                                    unsigned char *out,
                                                    const unsigned char *in,
                                                    size_t inl));
int EVP_CIPHER_meth_set_cleanup(EVP_CIPHER *cipher,
                                int (*cleanup) (EVP_CIPHER_CTX *));
int EVP_CIPHER_meth_set_set_asn1_params(EVP_CIPHER *cipher,
                                        int (*set_asn1_parameters) (EVP_CIPHER_CTX *,
                                                                    ASN1_TYPE *));
int EVP_CIPHER_meth_set_get_asn1_params(EVP_CIPHER *cipher,
                                        int (*get_asn1_parameters) (EVP_CIPHER_CTX *,
                                                                    ASN1_TYPE *));
int EVP_CIPHER_meth_set_ctrl(EVP_CIPHER *cipher,
                             int (*ctrl) (EVP_CIPHER_CTX *, int type,
                                          int arg, void *ptr));

int (*EVP_CIPHER_meth_get_init(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *ctx,
                                                          const unsigned char *key,
                                                          const unsigned char *iv,
                                                          int enc);
int (*EVP_CIPHER_meth_get_do_cipher(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *ctx,
                                                               unsigned char *out,
                                                               const unsigned char *in,
                                                               size_t inl);
int (*EVP_CIPHER_meth_get_cleanup(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *);
int (*EVP_CIPHER_meth_get_set_asn1_params(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *,
                                                                     ASN1_TYPE *);
int (*EVP_CIPHER_meth_get_get_asn1_params(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *,
                                                               ASN1_TYPE *);
int (*EVP_CIPHER_meth_get_ctrl(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *,
                                                          int type, int arg,
                                                          void *ptr);
D
 
Dr. Stephen Henson 已提交
221 222 223

/* Values for cipher flags */

224
/* Modes for ciphers */
D
 
Dr. Stephen Henson 已提交
225

226 227 228 229 230 231 232 233 234 235 236 237
# define         EVP_CIPH_STREAM_CIPHER          0x0
# define         EVP_CIPH_ECB_MODE               0x1
# define         EVP_CIPH_CBC_MODE               0x2
# define         EVP_CIPH_CFB_MODE               0x3
# define         EVP_CIPH_OFB_MODE               0x4
# define         EVP_CIPH_CTR_MODE               0x5
# define         EVP_CIPH_GCM_MODE               0x6
# define         EVP_CIPH_CCM_MODE               0x7
# define         EVP_CIPH_XTS_MODE               0x10001
# define         EVP_CIPH_WRAP_MODE              0x10002
# define         EVP_CIPH_OCB_MODE               0x10003
# define         EVP_CIPH_MODE                   0xF0007
D
 
Dr. Stephen Henson 已提交
238
/* Set if variable length cipher */
239
# define         EVP_CIPH_VARIABLE_LENGTH        0x8
240
/* Set if the iv handling should be done by the cipher itself */
241
# define         EVP_CIPH_CUSTOM_IV              0x10
242
/* Set if the cipher's init() function should be called if key is NULL */
243
# define         EVP_CIPH_ALWAYS_CALL_INIT       0x20
D
Dr. Stephen Henson 已提交
244
/* Call ctrl() to init cipher parameters */
245
# define         EVP_CIPH_CTRL_INIT              0x40
D
Dr. Stephen Henson 已提交
246
/* Don't use standard key length function */
247
# define         EVP_CIPH_CUSTOM_KEY_LENGTH      0x80
248
/* Don't use standard block padding */
249
# define         EVP_CIPH_NO_PADDING             0x100
250
/* cipher handles random key generation */
251
# define         EVP_CIPH_RAND_KEY               0x200
252
/* cipher has its own additional copying logic */
253
# define         EVP_CIPH_CUSTOM_COPY            0x400
254
/* Allow use default ASN1 get/set iv */
255
# define         EVP_CIPH_FLAG_DEFAULT_ASN1      0x1000
256
/* Buffer length in bits not bytes: CFB1 mode only */
257
# define         EVP_CIPH_FLAG_LENGTH_BITS       0x2000
D
Dr. Stephen Henson 已提交
258
/* Note if suitable for use in FIPS mode */
259
# define         EVP_CIPH_FLAG_FIPS              0x4000
D
Dr. Stephen Henson 已提交
260
/* Allow non FIPS cipher in FIPS mode */
261 262 263
# define         EVP_CIPH_FLAG_NON_FIPS_ALLOW    0x8000
/*
 * Cipher handles any and all padding logic as well as finalisation.
264
 */
265 266 267
# define         EVP_CIPH_FLAG_CUSTOM_CIPHER     0x100000
# define         EVP_CIPH_FLAG_AEAD_CIPHER       0x200000
# define         EVP_CIPH_FLAG_TLS1_1_MULTIBLOCK 0x400000
268 269
/* Cipher can handle pipeline operations */
# define         EVP_CIPH_FLAG_PIPELINE          0X800000
D
 
Dr. Stephen Henson 已提交
270

271 272 273
/*
 * Cipher context flag to indicate we can handle wrap mode: if allowed in
 * older applications it could overflow buffers.
274 275
 */

276
# define         EVP_CIPHER_CTX_FLAG_WRAP_ALLOW  0x1
277

D
Dr. Stephen Henson 已提交
278 279
/* ctrl() values */

280 281 282 283 284 285 286 287 288
# define         EVP_CTRL_INIT                   0x0
# define         EVP_CTRL_SET_KEY_LENGTH         0x1
# define         EVP_CTRL_GET_RC2_KEY_BITS       0x2
# define         EVP_CTRL_SET_RC2_KEY_BITS       0x3
# define         EVP_CTRL_GET_RC5_ROUNDS         0x4
# define         EVP_CTRL_SET_RC5_ROUNDS         0x5
# define         EVP_CTRL_RAND_KEY               0x6
# define         EVP_CTRL_PBE_PRF_NID            0x7
# define         EVP_CTRL_COPY                   0x8
289 290 291
# define         EVP_CTRL_AEAD_SET_IVLEN         0x9
# define         EVP_CTRL_AEAD_GET_TAG           0x10
# define         EVP_CTRL_AEAD_SET_TAG           0x11
D
Dr. Stephen Henson 已提交
292
# define         EVP_CTRL_AEAD_SET_IV_FIXED      0x12
293 294 295
# define         EVP_CTRL_GCM_SET_IVLEN          EVP_CTRL_AEAD_SET_IVLEN
# define         EVP_CTRL_GCM_GET_TAG            EVP_CTRL_AEAD_GET_TAG
# define         EVP_CTRL_GCM_SET_TAG            EVP_CTRL_AEAD_SET_TAG
D
Dr. Stephen Henson 已提交
296
# define         EVP_CTRL_GCM_SET_IV_FIXED       EVP_CTRL_AEAD_SET_IV_FIXED
297
# define         EVP_CTRL_GCM_IV_GEN             0x13
298 299 300
# define         EVP_CTRL_CCM_SET_IVLEN          EVP_CTRL_AEAD_SET_IVLEN
# define         EVP_CTRL_CCM_GET_TAG            EVP_CTRL_AEAD_GET_TAG
# define         EVP_CTRL_CCM_SET_TAG            EVP_CTRL_AEAD_SET_TAG
D
Dr. Stephen Henson 已提交
301
# define         EVP_CTRL_CCM_SET_IV_FIXED       EVP_CTRL_AEAD_SET_IV_FIXED
302 303 304 305 306 307
# define         EVP_CTRL_CCM_SET_L              0x14
# define         EVP_CTRL_CCM_SET_MSGLEN         0x15
/*
 * AEAD cipher deduces payload length and returns number of bytes required to
 * store MAC and eventual padding. Subsequent call to EVP_Cipher even
 * appends/verifies MAC.
308
 */
309
# define         EVP_CTRL_AEAD_TLS1_AAD          0x16
310
/* Used by composite AEAD ciphers, no-op in GCM, CCM... */
311
# define         EVP_CTRL_AEAD_SET_MAC_KEY       0x17
312
/* Set the GCM invocation field, decrypt only */
313
# define         EVP_CTRL_GCM_SET_IV_INV         0x18
314

315 316 317 318
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_AAD  0x19
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_ENCRYPT      0x1a
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_DECRYPT      0x1b
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_MAX_BUFSIZE  0x1c
319

320 321
# define         EVP_CTRL_SSL3_MASTER_SECRET             0x1d

322
/* EVP_CTRL_SET_SBOX takes the char * specifying S-boxes */
M
Matt Caswell 已提交
323
# define         EVP_CTRL_SET_SBOX                       0x1e
324 325 326 327
/*
 * EVP_CTRL_SBOX_USED takes a 'size_t' and 'char *', pointing at a
 * pre-allocated buffer with specified size
 */
M
Matt Caswell 已提交
328
# define         EVP_CTRL_SBOX_USED                      0x1f
329 330 331
/* EVP_CTRL_KEY_MESH takes 'size_t' number of bytes to mesh the key after,
 * 0 switches meshing off
 */
M
Matt Caswell 已提交
332
# define         EVP_CTRL_KEY_MESH                       0x20
333
/* EVP_CTRL_BLOCK_PADDING_MODE takes the padding mode */
M
Matt Caswell 已提交
334
# define         EVP_CTRL_BLOCK_PADDING_MODE             0x21
335

336 337 338 339 340 341 342
/* Set the output buffers to use for a pipelined operation */
# define         EVP_CTRL_SET_PIPELINE_OUTPUT_BUFS       0x22
/* Set the input buffers to use for a pipelined operation */
# define         EVP_CTRL_SET_PIPELINE_INPUT_BUFS        0x23
/* Set the input buffer lengths to use for a pipelined operation */
# define         EVP_CTRL_SET_PIPELINE_INPUT_LENS        0x24

343 344 345 346 347 348 349
/* Padding modes */
#define EVP_PADDING_PKCS7       1
#define EVP_PADDING_ISO7816_4   2
#define EVP_PADDING_ANSI923     3
#define EVP_PADDING_ISO10126    4
#define EVP_PADDING_ZERO        5

350 351 352
/* RFC 5246 defines additional data to be 13 bytes in length */
# define         EVP_AEAD_TLS1_AAD_LEN           13

353
typedef struct {
354 355 356 357
    unsigned char *out;
    const unsigned char *inp;
    size_t len;
    unsigned int interleave;
358 359
} EVP_CTRL_TLS1_1_MULTIBLOCK_PARAM;

360 361
/* GCM TLS constants */
/* Length of fixed part of IV derived from PRF */
362
# define EVP_GCM_TLS_FIXED_IV_LEN                        4
363
/* Length of explicit part of IV part of TLS records */
364
# define EVP_GCM_TLS_EXPLICIT_IV_LEN                     8
365
/* Length of tag for TLS */
366 367
# define EVP_GCM_TLS_TAG_LEN                             16

D
Dr. Stephen Henson 已提交
368 369 370 371 372
/* CCM TLS constants */
/* Length of fixed part of IV derived from PRF */
# define EVP_CCM_TLS_FIXED_IV_LEN                        4
/* Length of explicit part of IV part of TLS records */
# define EVP_CCM_TLS_EXPLICIT_IV_LEN                     8
373 374 375 376 377 378
/* Total length of CCM IV length for TLS */
# define EVP_CCM_TLS_IV_LEN                              12
/* Length of tag for TLS */
# define EVP_CCM_TLS_TAG_LEN                             16
/* Length of CCM8 tag for TLS */
# define EVP_CCM8_TLS_TAG_LEN                            8
D
Dr. Stephen Henson 已提交
379

380 381 382
/* Length of tag for TLS */
# define EVP_CHACHAPOLY_TLS_TAG_LEN                      16

383 384 385 386 387 388
typedef struct evp_cipher_info_st {
    const EVP_CIPHER *cipher;
    unsigned char iv[EVP_MAX_IV_LENGTH];
} EVP_CIPHER_INFO;


389
/* Password based encryption function */
390 391 392 393 394 395 396 397 398
typedef int (EVP_PBE_KEYGEN) (EVP_CIPHER_CTX *ctx, const char *pass,
                              int passlen, ASN1_TYPE *param,
                              const EVP_CIPHER *cipher, const EVP_MD *md,
                              int en_de);

# ifndef OPENSSL_NO_RSA
#  define EVP_PKEY_assign_RSA(pkey,rsa) EVP_PKEY_assign((pkey),EVP_PKEY_RSA,\
                                        (char *)(rsa))
# endif
399

400 401 402 403
# ifndef OPENSSL_NO_DSA
#  define EVP_PKEY_assign_DSA(pkey,dsa) EVP_PKEY_assign((pkey),EVP_PKEY_DSA,\
                                        (char *)(dsa))
# endif
404

405 406 407 408
# ifndef OPENSSL_NO_DH
#  define EVP_PKEY_assign_DH(pkey,dh) EVP_PKEY_assign((pkey),EVP_PKEY_DH,\
                                        (char *)(dh))
# endif
409

410 411
# ifndef OPENSSL_NO_EC
#  define EVP_PKEY_assign_EC_KEY(pkey,eckey) EVP_PKEY_assign((pkey),EVP_PKEY_EC,\
412
                                        (char *)(eckey))
413
# endif
414 415 416 417
# ifndef OPENSSL_NO_SIPHASH
#  define EVP_PKEY_assign_SIPHASH(pkey,shkey) EVP_PKEY_assign((pkey),EVP_PKEY_SIPHASH,\
                                        (char *)(shkey))
# endif
B
Bodo Möller 已提交
418

419 420 421 422 423
# ifndef OPENSSL_NO_POLY1305
#  define EVP_PKEY_assign_POLY1305(pkey,polykey) EVP_PKEY_assign((pkey),EVP_PKEY_POLY1305,\
                                        (char *)(polykey))
# endif

424
/* Add some extra combinations */
425 426 427 428
# define EVP_get_digestbynid(a) EVP_get_digestbyname(OBJ_nid2sn(a))
# define EVP_get_digestbyobj(a) EVP_get_digestbynid(OBJ_obj2nid(a))
# define EVP_get_cipherbynid(a) EVP_get_cipherbyname(OBJ_nid2sn(a))
# define EVP_get_cipherbyobj(a) EVP_get_cipherbynid(OBJ_obj2nid(a))
429

N
Nils Larsch 已提交
430
int EVP_MD_type(const EVP_MD *md);
431 432 433
# define EVP_MD_nid(e)                   EVP_MD_type(e)
# define EVP_MD_name(e)                  OBJ_nid2sn(EVP_MD_nid(e))
int EVP_MD_pkey_type(const EVP_MD *md);
434 435
int EVP_MD_size(const EVP_MD *md);
int EVP_MD_block_size(const EVP_MD *md);
D
Dr. Stephen Henson 已提交
436
unsigned long EVP_MD_flags(const EVP_MD *md);
437

N
Nils Larsch 已提交
438
const EVP_MD *EVP_MD_CTX_md(const EVP_MD_CTX *ctx);
439 440 441 442 443
int (*EVP_MD_CTX_update_fn(EVP_MD_CTX *ctx))(EVP_MD_CTX *ctx,
                                             const void *data, size_t count);
void EVP_MD_CTX_set_update_fn(EVP_MD_CTX *ctx,
                              int (*update) (EVP_MD_CTX *ctx,
                                             const void *data, size_t count));
444 445 446
# define EVP_MD_CTX_size(e)              EVP_MD_size(EVP_MD_CTX_md(e))
# define EVP_MD_CTX_block_size(e)        EVP_MD_block_size(EVP_MD_CTX_md(e))
# define EVP_MD_CTX_type(e)              EVP_MD_type(EVP_MD_CTX_md(e))
447 448
EVP_PKEY_CTX *EVP_MD_CTX_pkey_ctx(const EVP_MD_CTX *ctx);
void *EVP_MD_CTX_md_data(const EVP_MD_CTX *ctx);
449

N
Nils Larsch 已提交
450
int EVP_CIPHER_nid(const EVP_CIPHER *cipher);
451
# define EVP_CIPHER_name(e)              OBJ_nid2sn(EVP_CIPHER_nid(e))
452
int EVP_CIPHER_block_size(const EVP_CIPHER *cipher);
453
int EVP_CIPHER_impl_ctx_size(const EVP_CIPHER *cipher);
454 455
int EVP_CIPHER_key_length(const EVP_CIPHER *cipher);
int EVP_CIPHER_iv_length(const EVP_CIPHER *cipher);
N
Nils Larsch 已提交
456
unsigned long EVP_CIPHER_flags(const EVP_CIPHER *cipher);
457
# define EVP_CIPHER_mode(e)              (EVP_CIPHER_flags(e) & EVP_CIPH_MODE)
N
Nils Larsch 已提交
458

459
const EVP_CIPHER *EVP_CIPHER_CTX_cipher(const EVP_CIPHER_CTX *ctx);
460
int EVP_CIPHER_CTX_encrypting(const EVP_CIPHER_CTX *ctx);
N
Nils Larsch 已提交
461
int EVP_CIPHER_CTX_nid(const EVP_CIPHER_CTX *ctx);
462 463 464
int EVP_CIPHER_CTX_block_size(const EVP_CIPHER_CTX *ctx);
int EVP_CIPHER_CTX_key_length(const EVP_CIPHER_CTX *ctx);
int EVP_CIPHER_CTX_iv_length(const EVP_CIPHER_CTX *ctx);
465 466 467 468 469 470
const unsigned char *EVP_CIPHER_CTX_iv(const EVP_CIPHER_CTX *ctx);
const unsigned char *EVP_CIPHER_CTX_original_iv(const EVP_CIPHER_CTX *ctx);
unsigned char *EVP_CIPHER_CTX_iv_noconst(EVP_CIPHER_CTX *ctx);
unsigned char *EVP_CIPHER_CTX_buf_noconst(EVP_CIPHER_CTX *ctx);
int EVP_CIPHER_CTX_num(const EVP_CIPHER_CTX *ctx);
void EVP_CIPHER_CTX_set_num(EVP_CIPHER_CTX *ctx, int num);
471
int EVP_CIPHER_CTX_copy(EVP_CIPHER_CTX *out, const EVP_CIPHER_CTX *in);
472
void *EVP_CIPHER_CTX_get_app_data(const EVP_CIPHER_CTX *ctx);
N
Nils Larsch 已提交
473
void EVP_CIPHER_CTX_set_app_data(EVP_CIPHER_CTX *ctx, void *data);
474
void *EVP_CIPHER_CTX_get_cipher_data(const EVP_CIPHER_CTX *ctx);
475
void *EVP_CIPHER_CTX_set_cipher_data(EVP_CIPHER_CTX *ctx, void *cipher_data);
476
# define EVP_CIPHER_CTX_type(c)         EVP_CIPHER_type(EVP_CIPHER_CTX_cipher(c))
477 478 479
# if OPENSSL_API_COMPAT < 0x10100000L
#  define EVP_CIPHER_CTX_flags(c)       EVP_CIPHER_flags(EVP_CIPHER_CTX_cipher(c))
# endif
480
# define EVP_CIPHER_CTX_mode(c)         EVP_CIPHER_mode(EVP_CIPHER_CTX_cipher(c))
481

482 483
# define EVP_ENCODE_LENGTH(l)    ((((l)+2)/3*4)+((l)/48+1)*2+80)
# define EVP_DECODE_LENGTH(l)    (((l)+3)/4*3+80)
484 485 486 487 488 489 490 491 492 493 494 495 496 497 498

# define EVP_SignInit_ex(a,b,c)          EVP_DigestInit_ex(a,b,c)
# define EVP_SignInit(a,b)               EVP_DigestInit(a,b)
# define EVP_SignUpdate(a,b,c)           EVP_DigestUpdate(a,b,c)
# define EVP_VerifyInit_ex(a,b,c)        EVP_DigestInit_ex(a,b,c)
# define EVP_VerifyInit(a,b)             EVP_DigestInit(a,b)
# define EVP_VerifyUpdate(a,b,c)         EVP_DigestUpdate(a,b,c)
# define EVP_OpenUpdate(a,b,c,d,e)       EVP_DecryptUpdate(a,b,c,d,e)
# define EVP_SealUpdate(a,b,c,d,e)       EVP_EncryptUpdate(a,b,c,d,e)
# define EVP_DigestSignUpdate(a,b,c)     EVP_DigestUpdate(a,b,c)
# define EVP_DigestVerifyUpdate(a,b,c)   EVP_DigestUpdate(a,b,c)

# ifdef CONST_STRICT
void BIO_set_md(BIO *, const EVP_MD *md);
# else
499
#  define BIO_set_md(b,md)          BIO_ctrl(b,BIO_C_SET_MD,0,(char *)(md))
500
# endif
501 502 503 504 505 506 507 508
# define BIO_get_md(b,mdp)          BIO_ctrl(b,BIO_C_GET_MD,0,(char *)(mdp))
# define BIO_get_md_ctx(b,mdcp)     BIO_ctrl(b,BIO_C_GET_MD_CTX,0, \
                                             (char *)(mdcp))
# define BIO_set_md_ctx(b,mdcp)     BIO_ctrl(b,BIO_C_SET_MD_CTX,0, \
                                             (char *)(mdcp))
# define BIO_get_cipher_status(b)   BIO_ctrl(b,BIO_C_GET_CIPHER_STATUS,0,NULL)
# define BIO_get_cipher_ctx(b,c_pp) BIO_ctrl(b,BIO_C_GET_CIPHER_CTX,0, \
                                             (char *)(c_pp))
509

510
/*__owur*/ int EVP_Cipher(EVP_CIPHER_CTX *c,
511 512 513 514 515 516 517 518 519 520 521 522
                          unsigned char *out,
                          const unsigned char *in, unsigned int inl);

# define EVP_add_cipher_alias(n,alias) \
        OBJ_NAME_add((alias),OBJ_NAME_TYPE_CIPHER_METH|OBJ_NAME_ALIAS,(n))
# define EVP_add_digest_alias(n,alias) \
        OBJ_NAME_add((alias),OBJ_NAME_TYPE_MD_METH|OBJ_NAME_ALIAS,(n))
# define EVP_delete_cipher_alias(alias) \
        OBJ_NAME_remove(alias,OBJ_NAME_TYPE_CIPHER_METH|OBJ_NAME_ALIAS);
# define EVP_delete_digest_alias(alias) \
        OBJ_NAME_remove(alias,OBJ_NAME_TYPE_MD_METH|OBJ_NAME_ALIAS);

D
Dr. Stephen Henson 已提交
523
int EVP_MD_CTX_ctrl(EVP_MD_CTX *ctx, int cmd, int p1, void *p2);
524 525 526
EVP_MD_CTX *EVP_MD_CTX_new(void);
int EVP_MD_CTX_reset(EVP_MD_CTX *ctx);
void EVP_MD_CTX_free(EVP_MD_CTX *ctx);
527 528 529
# define EVP_MD_CTX_create()     EVP_MD_CTX_new()
# define EVP_MD_CTX_init(ctx)    EVP_MD_CTX_reset((ctx))
# define EVP_MD_CTX_destroy(ctx) EVP_MD_CTX_free((ctx))
530
__owur int EVP_MD_CTX_copy_ex(EVP_MD_CTX *out, const EVP_MD_CTX *in);
531 532 533
void EVP_MD_CTX_set_flags(EVP_MD_CTX *ctx, int flags);
void EVP_MD_CTX_clear_flags(EVP_MD_CTX *ctx, int flags);
int EVP_MD_CTX_test_flags(const EVP_MD_CTX *ctx, int flags);
534
__owur int EVP_DigestInit_ex(EVP_MD_CTX *ctx, const EVP_MD *type,
535
                                 ENGINE *impl);
536
__owur int EVP_DigestUpdate(EVP_MD_CTX *ctx, const void *d,
537
                                size_t cnt);
538
__owur int EVP_DigestFinal_ex(EVP_MD_CTX *ctx, unsigned char *md,
539
                                  unsigned int *s);
540
__owur int EVP_Digest(const void *data, size_t count,
541 542 543
                          unsigned char *md, unsigned int *size,
                          const EVP_MD *type, ENGINE *impl);

544 545
__owur int EVP_MD_CTX_copy(EVP_MD_CTX *out, const EVP_MD_CTX *in);
__owur int EVP_DigestInit(EVP_MD_CTX *ctx, const EVP_MD *type);
546 547 548
__owur int EVP_DigestFinal(EVP_MD_CTX *ctx, unsigned char *md,
                           unsigned int *s);

549
#ifndef OPENSSL_NO_UI
550 551 552 553 554
int EVP_read_pw_string(char *buf, int length, const char *prompt, int verify);
int EVP_read_pw_string_min(char *buf, int minlen, int maxlen,
                           const char *prompt, int verify);
void EVP_set_pw_prompt(const char *prompt);
char *EVP_get_pw_prompt(void);
555
#endif
556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606 607 608

__owur int EVP_BytesToKey(const EVP_CIPHER *type, const EVP_MD *md,
                          const unsigned char *salt,
                          const unsigned char *data, int datal, int count,
                          unsigned char *key, unsigned char *iv);

void EVP_CIPHER_CTX_set_flags(EVP_CIPHER_CTX *ctx, int flags);
void EVP_CIPHER_CTX_clear_flags(EVP_CIPHER_CTX *ctx, int flags);
int EVP_CIPHER_CTX_test_flags(const EVP_CIPHER_CTX *ctx, int flags);

__owur int EVP_EncryptInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *cipher,
                           const unsigned char *key, const unsigned char *iv);
/*__owur*/ int EVP_EncryptInit_ex(EVP_CIPHER_CTX *ctx,
                                  const EVP_CIPHER *cipher, ENGINE *impl,
                                  const unsigned char *key,
                                  const unsigned char *iv);
/*__owur*/ int EVP_EncryptUpdate(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                 int *outl, const unsigned char *in, int inl);
/*__owur*/ int EVP_EncryptFinal_ex(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                   int *outl);
/*__owur*/ int EVP_EncryptFinal(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                int *outl);

__owur int EVP_DecryptInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *cipher,
                           const unsigned char *key, const unsigned char *iv);
/*__owur*/ int EVP_DecryptInit_ex(EVP_CIPHER_CTX *ctx,
                                  const EVP_CIPHER *cipher, ENGINE *impl,
                                  const unsigned char *key,
                                  const unsigned char *iv);
/*__owur*/ int EVP_DecryptUpdate(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                 int *outl, const unsigned char *in, int inl);
__owur int EVP_DecryptFinal(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                            int *outl);
/*__owur*/ int EVP_DecryptFinal_ex(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                                   int *outl);

__owur int EVP_CipherInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *cipher,
                          const unsigned char *key, const unsigned char *iv,
                          int enc);
/*__owur*/ int EVP_CipherInit_ex(EVP_CIPHER_CTX *ctx,
                                 const EVP_CIPHER *cipher, ENGINE *impl,
                                 const unsigned char *key,
                                 const unsigned char *iv, int enc);
__owur int EVP_CipherUpdate(EVP_CIPHER_CTX *ctx, unsigned char *out,
                            int *outl, const unsigned char *in, int inl);
__owur int EVP_CipherFinal(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                           int *outl);
__owur int EVP_CipherFinal_ex(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                              int *outl);

__owur int EVP_SignFinal(EVP_MD_CTX *ctx, unsigned char *md, unsigned int *s,
                         EVP_PKEY *pkey);

609 610 611 612
__owur int EVP_DigestSign(EVP_MD_CTX *ctx, unsigned char *sigret,
                          size_t *siglen, const unsigned char *tbs,
                          size_t tbslen);

613 614 615
__owur int EVP_VerifyFinal(EVP_MD_CTX *ctx, const unsigned char *sigbuf,
                           unsigned int siglen, EVP_PKEY *pkey);

616 617 618 619
__owur int EVP_DigestVerify(EVP_MD_CTX *ctx, const unsigned char *sigret,
                            size_t siglen, const unsigned char *tbs,
                            size_t tbslen);

620 621 622 623 624 625 626 627 628 629 630 631
/*__owur*/ int EVP_DigestSignInit(EVP_MD_CTX *ctx, EVP_PKEY_CTX **pctx,
                                  const EVP_MD *type, ENGINE *e,
                                  EVP_PKEY *pkey);
__owur int EVP_DigestSignFinal(EVP_MD_CTX *ctx, unsigned char *sigret,
                               size_t *siglen);

__owur int EVP_DigestVerifyInit(EVP_MD_CTX *ctx, EVP_PKEY_CTX **pctx,
                                const EVP_MD *type, ENGINE *e,
                                EVP_PKEY *pkey);
__owur int EVP_DigestVerifyFinal(EVP_MD_CTX *ctx, const unsigned char *sig,
                                 size_t siglen);

D
Dr. Stephen Henson 已提交
632
# ifndef OPENSSL_NO_RSA
633 634 635 636 637 638 639 640 641
__owur int EVP_OpenInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *type,
                        const unsigned char *ek, int ekl,
                        const unsigned char *iv, EVP_PKEY *priv);
__owur int EVP_OpenFinal(EVP_CIPHER_CTX *ctx, unsigned char *out, int *outl);

__owur int EVP_SealInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *type,
                        unsigned char **ek, int *ekl, unsigned char *iv,
                        EVP_PKEY **pubk, int npubk);
__owur int EVP_SealFinal(EVP_CIPHER_CTX *ctx, unsigned char *out, int *outl);
D
Dr. Stephen Henson 已提交
642
# endif
643

R
Richard Levitte 已提交
644 645
EVP_ENCODE_CTX *EVP_ENCODE_CTX_new(void);
void EVP_ENCODE_CTX_free(EVP_ENCODE_CTX *ctx);
J
Jakub Zelenka 已提交
646
int EVP_ENCODE_CTX_copy(EVP_ENCODE_CTX *dctx, EVP_ENCODE_CTX *sctx);
R
Richard Levitte 已提交
647
int EVP_ENCODE_CTX_num(EVP_ENCODE_CTX *ctx);
648
void EVP_EncodeInit(EVP_ENCODE_CTX *ctx);
649 650
int EVP_EncodeUpdate(EVP_ENCODE_CTX *ctx, unsigned char *out, int *outl,
                     const unsigned char *in, int inl);
651 652 653 654 655 656 657 658 659
void EVP_EncodeFinal(EVP_ENCODE_CTX *ctx, unsigned char *out, int *outl);
int EVP_EncodeBlock(unsigned char *t, const unsigned char *f, int n);

void EVP_DecodeInit(EVP_ENCODE_CTX *ctx);
int EVP_DecodeUpdate(EVP_ENCODE_CTX *ctx, unsigned char *out, int *outl,
                     const unsigned char *in, int inl);
int EVP_DecodeFinal(EVP_ENCODE_CTX *ctx, unsigned
                    char *out, int *outl);
int EVP_DecodeBlock(unsigned char *t, const unsigned char *f, int n);
660

661
# if OPENSSL_API_COMPAT < 0x10100000L
R
Richard Levitte 已提交
662 663
#  define EVP_CIPHER_CTX_init(c)      EVP_CIPHER_CTX_reset(c)
#  define EVP_CIPHER_CTX_cleanup(c)   EVP_CIPHER_CTX_reset(c)
664
# endif
665
EVP_CIPHER_CTX *EVP_CIPHER_CTX_new(void);
666 667
int EVP_CIPHER_CTX_reset(EVP_CIPHER_CTX *c);
void EVP_CIPHER_CTX_free(EVP_CIPHER_CTX *c);
668
int EVP_CIPHER_CTX_set_key_length(EVP_CIPHER_CTX *x, int keylen);
669
int EVP_CIPHER_CTX_set_padding(EVP_CIPHER_CTX *c, int pad);
D
 
Dr. Stephen Henson 已提交
670
int EVP_CIPHER_CTX_ctrl(EVP_CIPHER_CTX *ctx, int type, int arg, void *ptr);
671
int EVP_CIPHER_CTX_rand_key(EVP_CIPHER_CTX *ctx, unsigned char *key);
672

673 674 675 676
const BIO_METHOD *BIO_f_md(void);
const BIO_METHOD *BIO_f_base64(void);
const BIO_METHOD *BIO_f_cipher(void);
const BIO_METHOD *BIO_f_reliable(void);
677 678
__owur int BIO_set_cipher(BIO *b, const EVP_CIPHER *c, const unsigned char *k,
                          const unsigned char *i, int enc);
679

D
 
Dr. Stephen Henson 已提交
680
const EVP_MD *EVP_md_null(void);
681
# ifndef OPENSSL_NO_MD2
D
 
Dr. Stephen Henson 已提交
682
const EVP_MD *EVP_md2(void);
683 684
# endif
# ifndef OPENSSL_NO_MD4
D
 
Dr. Stephen Henson 已提交
685
const EVP_MD *EVP_md4(void);
686 687
# endif
# ifndef OPENSSL_NO_MD5
D
 
Dr. Stephen Henson 已提交
688
const EVP_MD *EVP_md5(void);
D
Dr. Stephen Henson 已提交
689
const EVP_MD *EVP_md5_sha1(void);
690
# endif
B
Bill Cox 已提交
691
# ifndef OPENSSL_NO_BLAKE2
K
Kurt Roeckx 已提交
692 693
const EVP_MD *EVP_blake2b512(void);
const EVP_MD *EVP_blake2s256(void);
B
Bill Cox 已提交
694
# endif
D
 
Dr. Stephen Henson 已提交
695
const EVP_MD *EVP_sha1(void);
696 697 698 699
const EVP_MD *EVP_sha224(void);
const EVP_MD *EVP_sha256(void);
const EVP_MD *EVP_sha384(void);
const EVP_MD *EVP_sha512(void);
700
# ifndef OPENSSL_NO_MDC2
D
 
Dr. Stephen Henson 已提交
701
const EVP_MD *EVP_mdc2(void);
702 703
# endif
# ifndef OPENSSL_NO_RMD160
D
 
Dr. Stephen Henson 已提交
704
const EVP_MD *EVP_ripemd160(void);
705 706
# endif
# ifndef OPENSSL_NO_WHIRLPOOL
707
const EVP_MD *EVP_whirlpool(void);
708 709 710
# endif
const EVP_CIPHER *EVP_enc_null(void); /* does nothing :-) */
# ifndef OPENSSL_NO_DES
D
 
Dr. Stephen Henson 已提交
711 712 713
const EVP_CIPHER *EVP_des_ecb(void);
const EVP_CIPHER *EVP_des_ede(void);
const EVP_CIPHER *EVP_des_ede3(void);
L
Lutz Jänicke 已提交
714 715
const EVP_CIPHER *EVP_des_ede_ecb(void);
const EVP_CIPHER *EVP_des_ede3_ecb(void);
716
const EVP_CIPHER *EVP_des_cfb64(void);
717
#  define EVP_des_cfb EVP_des_cfb64
718 719 720
const EVP_CIPHER *EVP_des_cfb1(void);
const EVP_CIPHER *EVP_des_cfb8(void);
const EVP_CIPHER *EVP_des_ede_cfb64(void);
721
#  define EVP_des_ede_cfb EVP_des_ede_cfb64
722
const EVP_CIPHER *EVP_des_ede3_cfb64(void);
723
#  define EVP_des_ede3_cfb EVP_des_ede3_cfb64
724 725
const EVP_CIPHER *EVP_des_ede3_cfb1(void);
const EVP_CIPHER *EVP_des_ede3_cfb8(void);
D
 
Dr. Stephen Henson 已提交
726 727 728 729 730 731 732
const EVP_CIPHER *EVP_des_ofb(void);
const EVP_CIPHER *EVP_des_ede_ofb(void);
const EVP_CIPHER *EVP_des_ede3_ofb(void);
const EVP_CIPHER *EVP_des_cbc(void);
const EVP_CIPHER *EVP_des_ede_cbc(void);
const EVP_CIPHER *EVP_des_ede3_cbc(void);
const EVP_CIPHER *EVP_desx_cbc(void);
733
const EVP_CIPHER *EVP_des_ede3_wrap(void);
734 735 736 737 738
/*
 * This should now be supported through the dev_crypto ENGINE. But also, why
 * are rc4 and md5 declarations made here inside a "NO_DES" precompiler
 * branch?
 */
739
# endif
740
# ifndef OPENSSL_NO_RC4
D
 
Dr. Stephen Henson 已提交
741 742
const EVP_CIPHER *EVP_rc4(void);
const EVP_CIPHER *EVP_rc4_40(void);
743
#  ifndef OPENSSL_NO_MD5
744
const EVP_CIPHER *EVP_rc4_hmac_md5(void);
745 746 747
#  endif
# endif
# ifndef OPENSSL_NO_IDEA
D
 
Dr. Stephen Henson 已提交
748
const EVP_CIPHER *EVP_idea_ecb(void);
749
const EVP_CIPHER *EVP_idea_cfb64(void);
750
#  define EVP_idea_cfb EVP_idea_cfb64
D
 
Dr. Stephen Henson 已提交
751 752
const EVP_CIPHER *EVP_idea_ofb(void);
const EVP_CIPHER *EVP_idea_cbc(void);
753 754
# endif
# ifndef OPENSSL_NO_RC2
D
 
Dr. Stephen Henson 已提交
755 756 757 758
const EVP_CIPHER *EVP_rc2_ecb(void);
const EVP_CIPHER *EVP_rc2_cbc(void);
const EVP_CIPHER *EVP_rc2_40_cbc(void);
const EVP_CIPHER *EVP_rc2_64_cbc(void);
759
const EVP_CIPHER *EVP_rc2_cfb64(void);
760
#  define EVP_rc2_cfb EVP_rc2_cfb64
D
 
Dr. Stephen Henson 已提交
761
const EVP_CIPHER *EVP_rc2_ofb(void);
762 763
# endif
# ifndef OPENSSL_NO_BF
D
 
Dr. Stephen Henson 已提交
764 765
const EVP_CIPHER *EVP_bf_ecb(void);
const EVP_CIPHER *EVP_bf_cbc(void);
766
const EVP_CIPHER *EVP_bf_cfb64(void);
767
#  define EVP_bf_cfb EVP_bf_cfb64
D
 
Dr. Stephen Henson 已提交
768
const EVP_CIPHER *EVP_bf_ofb(void);
769 770
# endif
# ifndef OPENSSL_NO_CAST
D
 
Dr. Stephen Henson 已提交
771 772
const EVP_CIPHER *EVP_cast5_ecb(void);
const EVP_CIPHER *EVP_cast5_cbc(void);
773
const EVP_CIPHER *EVP_cast5_cfb64(void);
774
#  define EVP_cast5_cfb EVP_cast5_cfb64
D
 
Dr. Stephen Henson 已提交
775
const EVP_CIPHER *EVP_cast5_ofb(void);
776 777
# endif
# ifndef OPENSSL_NO_RC5
D
 
Dr. Stephen Henson 已提交
778 779
const EVP_CIPHER *EVP_rc5_32_12_16_cbc(void);
const EVP_CIPHER *EVP_rc5_32_12_16_ecb(void);
780
const EVP_CIPHER *EVP_rc5_32_12_16_cfb64(void);
781
#  define EVP_rc5_32_12_16_cfb EVP_rc5_32_12_16_cfb64
D
 
Dr. Stephen Henson 已提交
782
const EVP_CIPHER *EVP_rc5_32_12_16_ofb(void);
783
# endif
D
 
Dr. Stephen Henson 已提交
784 785
const EVP_CIPHER *EVP_aes_128_ecb(void);
const EVP_CIPHER *EVP_aes_128_cbc(void);
786 787 788
const EVP_CIPHER *EVP_aes_128_cfb1(void);
const EVP_CIPHER *EVP_aes_128_cfb8(void);
const EVP_CIPHER *EVP_aes_128_cfb128(void);
M
Matt Caswell 已提交
789
# define EVP_aes_128_cfb EVP_aes_128_cfb128
790 791
const EVP_CIPHER *EVP_aes_128_ofb(void);
const EVP_CIPHER *EVP_aes_128_ctr(void);
792
const EVP_CIPHER *EVP_aes_128_ccm(void);
793
const EVP_CIPHER *EVP_aes_128_gcm(void);
794
const EVP_CIPHER *EVP_aes_128_xts(void);
795
const EVP_CIPHER *EVP_aes_128_wrap(void);
D
Dr. Stephen Henson 已提交
796
const EVP_CIPHER *EVP_aes_128_wrap_pad(void);
M
Matt Caswell 已提交
797
# ifndef OPENSSL_NO_OCB
M
Matt Caswell 已提交
798
const EVP_CIPHER *EVP_aes_128_ocb(void);
M
Matt Caswell 已提交
799
# endif
D
 
Dr. Stephen Henson 已提交
800 801
const EVP_CIPHER *EVP_aes_192_ecb(void);
const EVP_CIPHER *EVP_aes_192_cbc(void);
802 803 804
const EVP_CIPHER *EVP_aes_192_cfb1(void);
const EVP_CIPHER *EVP_aes_192_cfb8(void);
const EVP_CIPHER *EVP_aes_192_cfb128(void);
M
Matt Caswell 已提交
805
# define EVP_aes_192_cfb EVP_aes_192_cfb128
806 807
const EVP_CIPHER *EVP_aes_192_ofb(void);
const EVP_CIPHER *EVP_aes_192_ctr(void);
808
const EVP_CIPHER *EVP_aes_192_ccm(void);
809
const EVP_CIPHER *EVP_aes_192_gcm(void);
810
const EVP_CIPHER *EVP_aes_192_wrap(void);
D
Dr. Stephen Henson 已提交
811
const EVP_CIPHER *EVP_aes_192_wrap_pad(void);
M
Matt Caswell 已提交
812
# ifndef OPENSSL_NO_OCB
M
Matt Caswell 已提交
813
const EVP_CIPHER *EVP_aes_192_ocb(void);
M
Matt Caswell 已提交
814
# endif
D
 
Dr. Stephen Henson 已提交
815 816
const EVP_CIPHER *EVP_aes_256_ecb(void);
const EVP_CIPHER *EVP_aes_256_cbc(void);
817 818 819
const EVP_CIPHER *EVP_aes_256_cfb1(void);
const EVP_CIPHER *EVP_aes_256_cfb8(void);
const EVP_CIPHER *EVP_aes_256_cfb128(void);
M
Matt Caswell 已提交
820
# define EVP_aes_256_cfb EVP_aes_256_cfb128
821 822
const EVP_CIPHER *EVP_aes_256_ofb(void);
const EVP_CIPHER *EVP_aes_256_ctr(void);
823
const EVP_CIPHER *EVP_aes_256_ccm(void);
824
const EVP_CIPHER *EVP_aes_256_gcm(void);
825
const EVP_CIPHER *EVP_aes_256_xts(void);
826
const EVP_CIPHER *EVP_aes_256_wrap(void);
D
Dr. Stephen Henson 已提交
827
const EVP_CIPHER *EVP_aes_256_wrap_pad(void);
M
Matt Caswell 已提交
828
# ifndef OPENSSL_NO_OCB
M
Matt Caswell 已提交
829
const EVP_CIPHER *EVP_aes_256_ocb(void);
M
Matt Caswell 已提交
830
# endif
831 832
const EVP_CIPHER *EVP_aes_128_cbc_hmac_sha1(void);
const EVP_CIPHER *EVP_aes_256_cbc_hmac_sha1(void);
B
Ben Laurie 已提交
833 834
const EVP_CIPHER *EVP_aes_128_cbc_hmac_sha256(void);
const EVP_CIPHER *EVP_aes_256_cbc_hmac_sha256(void);
835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858 859 860
# ifndef OPENSSL_NO_ARIA
const EVP_CIPHER *EVP_aria_128_ecb(void);
const EVP_CIPHER *EVP_aria_128_cbc(void);
const EVP_CIPHER *EVP_aria_128_cfb1(void);
const EVP_CIPHER *EVP_aria_128_cfb8(void);
const EVP_CIPHER *EVP_aria_128_cfb128(void);
#  define EVP_aria_128_cfb EVP_aria_128_cfb128
const EVP_CIPHER *EVP_aria_128_ctr(void);
const EVP_CIPHER *EVP_aria_128_ofb(void);
const EVP_CIPHER *EVP_aria_192_ecb(void);
const EVP_CIPHER *EVP_aria_192_cbc(void);
const EVP_CIPHER *EVP_aria_192_cfb1(void);
const EVP_CIPHER *EVP_aria_192_cfb8(void);
const EVP_CIPHER *EVP_aria_192_cfb128(void);
#  define EVP_aria_192_cfb EVP_aria_192_cfb128
const EVP_CIPHER *EVP_aria_192_ctr(void);
const EVP_CIPHER *EVP_aria_192_ofb(void);
const EVP_CIPHER *EVP_aria_256_ecb(void);
const EVP_CIPHER *EVP_aria_256_cbc(void);
const EVP_CIPHER *EVP_aria_256_cfb1(void);
const EVP_CIPHER *EVP_aria_256_cfb8(void);
const EVP_CIPHER *EVP_aria_256_cfb128(void);
#  define EVP_aria_256_cfb EVP_aria_256_cfb128
const EVP_CIPHER *EVP_aria_256_ctr(void);
const EVP_CIPHER *EVP_aria_256_ofb(void);
# endif
861
# ifndef OPENSSL_NO_CAMELLIA
862 863 864 865 866
const EVP_CIPHER *EVP_camellia_128_ecb(void);
const EVP_CIPHER *EVP_camellia_128_cbc(void);
const EVP_CIPHER *EVP_camellia_128_cfb1(void);
const EVP_CIPHER *EVP_camellia_128_cfb8(void);
const EVP_CIPHER *EVP_camellia_128_cfb128(void);
867
#  define EVP_camellia_128_cfb EVP_camellia_128_cfb128
868
const EVP_CIPHER *EVP_camellia_128_ofb(void);
869
const EVP_CIPHER *EVP_camellia_128_ctr(void);
870 871 872 873 874
const EVP_CIPHER *EVP_camellia_192_ecb(void);
const EVP_CIPHER *EVP_camellia_192_cbc(void);
const EVP_CIPHER *EVP_camellia_192_cfb1(void);
const EVP_CIPHER *EVP_camellia_192_cfb8(void);
const EVP_CIPHER *EVP_camellia_192_cfb128(void);
875
#  define EVP_camellia_192_cfb EVP_camellia_192_cfb128
876
const EVP_CIPHER *EVP_camellia_192_ofb(void);
877
const EVP_CIPHER *EVP_camellia_192_ctr(void);
878 879 880 881 882
const EVP_CIPHER *EVP_camellia_256_ecb(void);
const EVP_CIPHER *EVP_camellia_256_cbc(void);
const EVP_CIPHER *EVP_camellia_256_cfb1(void);
const EVP_CIPHER *EVP_camellia_256_cfb8(void);
const EVP_CIPHER *EVP_camellia_256_cfb128(void);
883
#  define EVP_camellia_256_cfb EVP_camellia_256_cfb128
884
const EVP_CIPHER *EVP_camellia_256_ofb(void);
885
const EVP_CIPHER *EVP_camellia_256_ctr(void);
886
# endif
887 888 889 890 891 892
# ifndef OPENSSL_NO_CHACHA
const EVP_CIPHER *EVP_chacha20(void);
#  ifndef OPENSSL_NO_POLY1305
const EVP_CIPHER *EVP_chacha20_poly1305(void);
#  endif
# endif
893

894
# ifndef OPENSSL_NO_SEED
B
Bodo Möller 已提交
895 896 897
const EVP_CIPHER *EVP_seed_ecb(void);
const EVP_CIPHER *EVP_seed_cbc(void);
const EVP_CIPHER *EVP_seed_cfb128(void);
898
#  define EVP_seed_cfb EVP_seed_cfb128
B
Bodo Möller 已提交
899
const EVP_CIPHER *EVP_seed_ofb(void);
900
# endif
B
Bodo Möller 已提交
901

902
# if OPENSSL_API_COMPAT < 0x10100000L
903
#  define OPENSSL_add_all_algorithms_conf() \
904 905 906
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS \
                        | OPENSSL_INIT_LOAD_CONFIG, NULL)
907
#  define OPENSSL_add_all_algorithms_noconf() \
908 909 910 911 912 913 914 915 916 917 918 919 920
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS, NULL)

#  ifdef OPENSSL_LOAD_CONF
#   define OpenSSL_add_all_algorithms() \
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS \
                        | OPENSSL_INIT_LOAD_CONFIG, NULL)
#  else
#   define OpenSSL_add_all_algorithms() \
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS, NULL)
#  endif
921

922
#  define OpenSSL_add_all_ciphers() \
923
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS, NULL)
924
#  define OpenSSL_add_all_digests() \
925
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_DIGESTS, NULL)
926

M
Matt Caswell 已提交
927
#  define EVP_cleanup() while(0) continue
928
# endif
929

D
 
Dr. Stephen Henson 已提交
930 931
int EVP_add_cipher(const EVP_CIPHER *cipher);
int EVP_add_digest(const EVP_MD *digest);
932

B
Ben Laurie 已提交
933 934
const EVP_CIPHER *EVP_get_cipherbyname(const char *name);
const EVP_MD *EVP_get_digestbyname(const char *name);
935

936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952 953 954 955 956 957 958
void EVP_CIPHER_do_all(void (*fn) (const EVP_CIPHER *ciph,
                                   const char *from, const char *to, void *x),
                       void *arg);
void EVP_CIPHER_do_all_sorted(void (*fn)
                               (const EVP_CIPHER *ciph, const char *from,
                                const char *to, void *x), void *arg);

void EVP_MD_do_all(void (*fn) (const EVP_MD *ciph,
                               const char *from, const char *to, void *x),
                   void *arg);
void EVP_MD_do_all_sorted(void (*fn)
                           (const EVP_MD *ciph, const char *from,
                            const char *to, void *x), void *arg);

int EVP_PKEY_decrypt_old(unsigned char *dec_key,
                         const unsigned char *enc_key, int enc_key_len,
                         EVP_PKEY *private_key);
int EVP_PKEY_encrypt_old(unsigned char *enc_key,
                         const unsigned char *key, int key_len,
                         EVP_PKEY *pub_key);
int EVP_PKEY_type(int type);
int EVP_PKEY_id(const EVP_PKEY *pkey);
int EVP_PKEY_base_id(const EVP_PKEY *pkey);
959
int EVP_PKEY_bits(const EVP_PKEY *pkey);
960 961 962 963 964
int EVP_PKEY_security_bits(const EVP_PKEY *pkey);
int EVP_PKEY_size(EVP_PKEY *pkey);
int EVP_PKEY_set_type(EVP_PKEY *pkey, int type);
int EVP_PKEY_set_type_str(EVP_PKEY *pkey, const char *str, int len);
int EVP_PKEY_assign(EVP_PKEY *pkey, int type, void *key);
D
Dr. Stephen Henson 已提交
965
void *EVP_PKEY_get0(const EVP_PKEY *pkey);
966
const unsigned char *EVP_PKEY_get0_hmac(const EVP_PKEY *pkey, size_t *len);
967 968 969
# ifndef OPENSSL_NO_POLY1305
const unsigned char *EVP_PKEY_get0_poly1305(const EVP_PKEY *pkey, size_t *len);
# endif
970 971 972
# ifndef OPENSSL_NO_SIPHASH
const unsigned char *EVP_PKEY_get0_siphash(const EVP_PKEY *pkey, size_t *len);
# endif
973 974

# ifndef OPENSSL_NO_RSA
975
struct rsa_st;
976
int EVP_PKEY_set1_RSA(EVP_PKEY *pkey, struct rsa_st *key);
977
struct rsa_st *EVP_PKEY_get0_RSA(EVP_PKEY *pkey);
978
struct rsa_st *EVP_PKEY_get1_RSA(EVP_PKEY *pkey);
979 980
# endif
# ifndef OPENSSL_NO_DSA
981
struct dsa_st;
982
int EVP_PKEY_set1_DSA(EVP_PKEY *pkey, struct dsa_st *key);
983
struct dsa_st *EVP_PKEY_get0_DSA(EVP_PKEY *pkey);
984
struct dsa_st *EVP_PKEY_get1_DSA(EVP_PKEY *pkey);
985 986
# endif
# ifndef OPENSSL_NO_DH
987
struct dh_st;
988
int EVP_PKEY_set1_DH(EVP_PKEY *pkey, struct dh_st *key);
989
struct dh_st *EVP_PKEY_get0_DH(EVP_PKEY *pkey);
990
struct dh_st *EVP_PKEY_get1_DH(EVP_PKEY *pkey);
991 992
# endif
# ifndef OPENSSL_NO_EC
993
struct ec_key_st;
994
int EVP_PKEY_set1_EC_KEY(EVP_PKEY *pkey, struct ec_key_st *key);
995
struct ec_key_st *EVP_PKEY_get0_EC_KEY(EVP_PKEY *pkey);
996
struct ec_key_st *EVP_PKEY_get1_EC_KEY(EVP_PKEY *pkey);
997
# endif
998

999
EVP_PKEY *EVP_PKEY_new(void);
1000
int EVP_PKEY_up_ref(EVP_PKEY *pkey);
1001
void EVP_PKEY_free(EVP_PKEY *pkey);
1002

1003 1004 1005
EVP_PKEY *d2i_PublicKey(int type, EVP_PKEY **a, const unsigned char **pp,
                        long length);
int i2d_PublicKey(EVP_PKEY *a, unsigned char **pp);
1006

1007 1008 1009 1010 1011
EVP_PKEY *d2i_PrivateKey(int type, EVP_PKEY **a, const unsigned char **pp,
                         long length);
EVP_PKEY *d2i_AutoPrivateKey(EVP_PKEY **a, const unsigned char **pp,
                             long length);
int i2d_PrivateKey(EVP_PKEY *a, unsigned char **pp);
1012

R
Richard Levitte 已提交
1013 1014
int EVP_PKEY_copy_parameters(EVP_PKEY *to, const EVP_PKEY *from);
int EVP_PKEY_missing_parameters(const EVP_PKEY *pkey);
1015
int EVP_PKEY_save_parameters(EVP_PKEY *pkey, int mode);
R
Richard Levitte 已提交
1016
int EVP_PKEY_cmp_parameters(const EVP_PKEY *a, const EVP_PKEY *b);
1017

R
Richard Levitte 已提交
1018
int EVP_PKEY_cmp(const EVP_PKEY *a, const EVP_PKEY *b);
1019

1020
int EVP_PKEY_print_public(BIO *out, const EVP_PKEY *pkey,
1021
                          int indent, ASN1_PCTX *pctx);
1022
int EVP_PKEY_print_private(BIO *out, const EVP_PKEY *pkey,
1023
                           int indent, ASN1_PCTX *pctx);
1024
int EVP_PKEY_print_params(BIO *out, const EVP_PKEY *pkey,
1025
                          int indent, ASN1_PCTX *pctx);
1026

1027 1028
int EVP_PKEY_get_default_digest_nid(EVP_PKEY *pkey, int *pnid);

D
Dr. Stephen Henson 已提交
1029 1030 1031 1032
int EVP_PKEY_set1_tls_encodedpoint(EVP_PKEY *pkey,
                                   const unsigned char *pt, size_t ptlen);
size_t EVP_PKEY_get1_tls_encodedpoint(EVP_PKEY *pkey, unsigned char **ppt);

1033
int EVP_CIPHER_type(const EVP_CIPHER *ctx);
1034

1035 1036 1037 1038 1039
/* calls methods */
int EVP_CIPHER_param_to_asn1(EVP_CIPHER_CTX *c, ASN1_TYPE *type);
int EVP_CIPHER_asn1_to_param(EVP_CIPHER_CTX *c, ASN1_TYPE *type);

/* These are used by EVP_CIPHER methods */
1040 1041
int EVP_CIPHER_set_asn1_iv(EVP_CIPHER_CTX *c, ASN1_TYPE *type);
int EVP_CIPHER_get_asn1_iv(EVP_CIPHER_CTX *c, ASN1_TYPE *type);
1042

1043
/* PKCS5 password based encryption */
1044
int PKCS5_PBE_keyivgen(EVP_CIPHER_CTX *ctx, const char *pass, int passlen,
1045 1046
                       ASN1_TYPE *param, const EVP_CIPHER *cipher,
                       const EVP_MD *md, int en_de);
1047
int PKCS5_PBKDF2_HMAC_SHA1(const char *pass, int passlen,
1048 1049
                           const unsigned char *salt, int saltlen, int iter,
                           int keylen, unsigned char *out);
1050
int PKCS5_PBKDF2_HMAC(const char *pass, int passlen,
1051 1052
                      const unsigned char *salt, int saltlen, int iter,
                      const EVP_MD *digest, int keylen, unsigned char *out);
1053
int PKCS5_v2_PBE_keyivgen(EVP_CIPHER_CTX *ctx, const char *pass, int passlen,
1054 1055
                          ASN1_TYPE *param, const EVP_CIPHER *cipher,
                          const EVP_MD *md, int en_de);
1056

R
Rich Salz 已提交
1057
#ifndef OPENSSL_NO_SCRYPT
D
Dr. Stephen Henson 已提交
1058 1059 1060 1061 1062
int EVP_PBE_scrypt(const char *pass, size_t passlen,
                   const unsigned char *salt, size_t saltlen,
                   uint64_t N, uint64_t r, uint64_t p, uint64_t maxmem,
                   unsigned char *key, size_t keylen);

1063 1064 1065
int PKCS5_v2_scrypt_keyivgen(EVP_CIPHER_CTX *ctx, const char *pass,
                             int passlen, ASN1_TYPE *param,
                             const EVP_CIPHER *c, const EVP_MD *md, int en_de);
R
Rich Salz 已提交
1066
#endif
1067

1068 1069
void PKCS5_PBE_add(void);

1070 1071
int EVP_PBE_CipherInit(ASN1_OBJECT *pbe_obj, const char *pass, int passlen,
                       ASN1_TYPE *param, EVP_CIPHER_CTX *ctx, int en_de);
1072 1073 1074 1075

/* PBE type */

/* Can appear as the outermost AlgorithmIdentifier */
1076
# define EVP_PBE_TYPE_OUTER      0x0
1077
/* Is an PRF type OID */
1078
# define EVP_PBE_TYPE_PRF        0x1
1079 1080
/* Is a PKCS#5 v2.0 KDF */
# define EVP_PBE_TYPE_KDF        0x2
1081

1082 1083
int EVP_PBE_alg_add_type(int pbe_type, int pbe_nid, int cipher_nid,
                         int md_nid, EVP_PBE_KEYGEN *keygen);
D
 
Dr. Stephen Henson 已提交
1084
int EVP_PBE_alg_add(int nid, const EVP_CIPHER *cipher, const EVP_MD *md,
1085 1086 1087
                    EVP_PBE_KEYGEN *keygen);
int EVP_PBE_find(int type, int pbe_nid, int *pcnid, int *pmnid,
                 EVP_PBE_KEYGEN **pkeygen);
1088
void EVP_PBE_cleanup(void);
D
Dr. Stephen Henson 已提交
1089
int EVP_PBE_get(int *ptype, int *ppbe_nid, size_t num);
1090

1091 1092 1093
# define ASN1_PKEY_ALIAS         0x1
# define ASN1_PKEY_DYNAMIC       0x2
# define ASN1_PKEY_SIGPARAM_NULL 0x4
1094

1095 1096 1097 1098 1099 1100
# define ASN1_PKEY_CTRL_PKCS7_SIGN       0x1
# define ASN1_PKEY_CTRL_PKCS7_ENCRYPT    0x2
# define ASN1_PKEY_CTRL_DEFAULT_MD_NID   0x3
# define ASN1_PKEY_CTRL_CMS_SIGN         0x5
# define ASN1_PKEY_CTRL_CMS_ENVELOPE     0x7
# define ASN1_PKEY_CTRL_CMS_RI_TYPE      0x8
1101

D
Dr. Stephen Henson 已提交
1102 1103 1104
# define ASN1_PKEY_CTRL_SET1_TLS_ENCPT   0x9
# define ASN1_PKEY_CTRL_GET1_TLS_ENCPT   0xa

1105 1106
int EVP_PKEY_asn1_get_count(void);
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_get0(int idx);
1107 1108
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_find(ENGINE **pe, int type);
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_find_str(ENGINE **pe,
1109
                                                   const char *str, int len);
1110 1111
int EVP_PKEY_asn1_add0(const EVP_PKEY_ASN1_METHOD *ameth);
int EVP_PKEY_asn1_add_alias(int to, int from);
1112 1113 1114 1115 1116
int EVP_PKEY_asn1_get0_info(int *ppkey_id, int *pkey_base_id,
                            int *ppkey_flags, const char **pinfo,
                            const char **ppem_str,
                            const EVP_PKEY_ASN1_METHOD *ameth);

1117
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_get0_asn1(const EVP_PKEY *pkey);
1118 1119 1120 1121 1122
EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_new(int id, int flags,
                                        const char *pem_str,
                                        const char *info);
void EVP_PKEY_asn1_copy(EVP_PKEY_ASN1_METHOD *dst,
                        const EVP_PKEY_ASN1_METHOD *src);
1123
void EVP_PKEY_asn1_free(EVP_PKEY_ASN1_METHOD *ameth);
1124
void EVP_PKEY_asn1_set_public(EVP_PKEY_ASN1_METHOD *ameth,
1125 1126 1127 1128 1129 1130 1131 1132 1133 1134 1135
                              int (*pub_decode) (EVP_PKEY *pk,
                                                 X509_PUBKEY *pub),
                              int (*pub_encode) (X509_PUBKEY *pub,
                                                 const EVP_PKEY *pk),
                              int (*pub_cmp) (const EVP_PKEY *a,
                                              const EVP_PKEY *b),
                              int (*pub_print) (BIO *out,
                                                const EVP_PKEY *pkey,
                                                int indent, ASN1_PCTX *pctx),
                              int (*pkey_size) (const EVP_PKEY *pk),
                              int (*pkey_bits) (const EVP_PKEY *pk));
1136
void EVP_PKEY_asn1_set_private(EVP_PKEY_ASN1_METHOD *ameth,
1137
                               int (*priv_decode) (EVP_PKEY *pk,
1138
                                                   const PKCS8_PRIV_KEY_INFO
1139 1140 1141 1142 1143 1144 1145
                                                   *p8inf),
                               int (*priv_encode) (PKCS8_PRIV_KEY_INFO *p8,
                                                   const EVP_PKEY *pk),
                               int (*priv_print) (BIO *out,
                                                  const EVP_PKEY *pkey,
                                                  int indent,
                                                  ASN1_PCTX *pctx));
1146
void EVP_PKEY_asn1_set_param(EVP_PKEY_ASN1_METHOD *ameth,
1147 1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160
                             int (*param_decode) (EVP_PKEY *pkey,
                                                  const unsigned char **pder,
                                                  int derlen),
                             int (*param_encode) (const EVP_PKEY *pkey,
                                                  unsigned char **pder),
                             int (*param_missing) (const EVP_PKEY *pk),
                             int (*param_copy) (EVP_PKEY *to,
                                                const EVP_PKEY *from),
                             int (*param_cmp) (const EVP_PKEY *a,
                                               const EVP_PKEY *b),
                             int (*param_print) (BIO *out,
                                                 const EVP_PKEY *pkey,
                                                 int indent,
                                                 ASN1_PCTX *pctx));
1161

1162
void EVP_PKEY_asn1_set_free(EVP_PKEY_ASN1_METHOD *ameth,
1163
                            void (*pkey_free) (EVP_PKEY *pkey));
1164
void EVP_PKEY_asn1_set_ctrl(EVP_PKEY_ASN1_METHOD *ameth,
1165 1166
                            int (*pkey_ctrl) (EVP_PKEY *pkey, int op,
                                              long arg1, void *arg2));
1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177 1178 1179
void EVP_PKEY_asn1_set_item(EVP_PKEY_ASN1_METHOD *ameth,
                            int (*item_verify) (EVP_MD_CTX *ctx,
                                                const ASN1_ITEM *it,
                                                void *asn,
                                                X509_ALGOR *a,
                                                ASN1_BIT_STRING *sig,
                                                EVP_PKEY *pkey),
                            int (*item_sign) (EVP_MD_CTX *ctx,
                                              const ASN1_ITEM *it,
                                              void *asn,
                                              X509_ALGOR *alg1,
                                              X509_ALGOR *alg2,
                                              ASN1_BIT_STRING *sig));
1180

1181
void EVP_PKEY_asn1_set_security_bits(EVP_PKEY_ASN1_METHOD *ameth,
1182 1183
                                     int (*pkey_security_bits) (const EVP_PKEY
                                                                *pk));
1184

1185 1186 1187 1188 1189 1190 1191 1192 1193 1194 1195
# define EVP_PKEY_OP_UNDEFINED           0
# define EVP_PKEY_OP_PARAMGEN            (1<<1)
# define EVP_PKEY_OP_KEYGEN              (1<<2)
# define EVP_PKEY_OP_SIGN                (1<<3)
# define EVP_PKEY_OP_VERIFY              (1<<4)
# define EVP_PKEY_OP_VERIFYRECOVER       (1<<5)
# define EVP_PKEY_OP_SIGNCTX             (1<<6)
# define EVP_PKEY_OP_VERIFYCTX           (1<<7)
# define EVP_PKEY_OP_ENCRYPT             (1<<8)
# define EVP_PKEY_OP_DECRYPT             (1<<9)
# define EVP_PKEY_OP_DERIVE              (1<<10)
1196

1197 1198 1199
# define EVP_PKEY_OP_TYPE_SIG    \
        (EVP_PKEY_OP_SIGN | EVP_PKEY_OP_VERIFY | EVP_PKEY_OP_VERIFYRECOVER \
                | EVP_PKEY_OP_SIGNCTX | EVP_PKEY_OP_VERIFYCTX)
1200

1201 1202
# define EVP_PKEY_OP_TYPE_CRYPT \
        (EVP_PKEY_OP_ENCRYPT | EVP_PKEY_OP_DECRYPT)
1203

1204 1205
# define EVP_PKEY_OP_TYPE_NOGEN \
        (EVP_PKEY_OP_TYPE_SIG | EVP_PKEY_OP_TYPE_CRYPT | EVP_PKEY_OP_DERIVE)
D
Dr. Stephen Henson 已提交
1206

1207 1208
# define EVP_PKEY_OP_TYPE_GEN \
                (EVP_PKEY_OP_PARAMGEN | EVP_PKEY_OP_KEYGEN)
1209

1210 1211
# define  EVP_PKEY_CTX_set_signature_md(ctx, md) \
                EVP_PKEY_CTX_ctrl(ctx, -1, EVP_PKEY_OP_TYPE_SIG,  \
1212
                                        EVP_PKEY_CTRL_MD, 0, (void *)(md))
1213

1214 1215
# define  EVP_PKEY_CTX_get_signature_md(ctx, pmd)        \
                EVP_PKEY_CTX_ctrl(ctx, -1, EVP_PKEY_OP_TYPE_SIG,  \
1216
                                        EVP_PKEY_CTRL_GET_MD, 0, (void *)(pmd))
1217

D
Dr. Stephen Henson 已提交
1218 1219
# define  EVP_PKEY_CTX_set_mac_key(ctx, key, len)        \
                EVP_PKEY_CTX_ctrl(ctx, -1, EVP_PKEY_OP_KEYGEN,  \
1220
                                  EVP_PKEY_CTRL_SET_MAC_KEY, len, (void *)(key))
D
Dr. Stephen Henson 已提交
1221

1222 1223
# define EVP_PKEY_CTRL_MD                1
# define EVP_PKEY_CTRL_PEER_KEY          2
1224

1225 1226
# define EVP_PKEY_CTRL_PKCS7_ENCRYPT     3
# define EVP_PKEY_CTRL_PKCS7_DECRYPT     4
1227

1228
# define EVP_PKEY_CTRL_PKCS7_SIGN        5
1229

1230
# define EVP_PKEY_CTRL_SET_MAC_KEY       6
1231

1232
# define EVP_PKEY_CTRL_DIGESTINIT        7
1233

1234
/* Used by GOST key encryption in TLS */
1235
# define EVP_PKEY_CTRL_SET_IV            8
1236

1237 1238 1239
# define EVP_PKEY_CTRL_CMS_ENCRYPT       9
# define EVP_PKEY_CTRL_CMS_DECRYPT       10
# define EVP_PKEY_CTRL_CMS_SIGN          11
D
Dr. Stephen Henson 已提交
1240

1241
# define EVP_PKEY_CTRL_CIPHER            12
1242

1243
# define EVP_PKEY_CTRL_GET_MD            13
1244

1245 1246
# define EVP_PKEY_CTRL_SET_DIGEST_SIZE   14

1247
# define EVP_PKEY_ALG_CTRL               0x1000
1248

1249 1250 1251
# define EVP_PKEY_FLAG_AUTOARGLEN        2
/*
 * Method handles all operations: don't assume any digest related defaults.
1252
 */
1253
# define EVP_PKEY_FLAG_SIGCTX_CUSTOM     4
1254

1255
const EVP_PKEY_METHOD *EVP_PKEY_meth_find(int type);
1256
EVP_PKEY_METHOD *EVP_PKEY_meth_new(int id, int flags);
1257
void EVP_PKEY_meth_get0_info(int *ppkey_id, int *pflags,
1258
                             const EVP_PKEY_METHOD *meth);
1259
void EVP_PKEY_meth_copy(EVP_PKEY_METHOD *dst, const EVP_PKEY_METHOD *src);
1260
void EVP_PKEY_meth_free(EVP_PKEY_METHOD *pmeth);
1261 1262
int EVP_PKEY_meth_add0(const EVP_PKEY_METHOD *pmeth);

D
Dr. Stephen Henson 已提交
1263 1264
EVP_PKEY_CTX *EVP_PKEY_CTX_new(EVP_PKEY *pkey, ENGINE *e);
EVP_PKEY_CTX *EVP_PKEY_CTX_new_id(int id, ENGINE *e);
1265
EVP_PKEY_CTX *EVP_PKEY_CTX_dup(EVP_PKEY_CTX *ctx);
1266
void EVP_PKEY_CTX_free(EVP_PKEY_CTX *ctx);
1267

1268
int EVP_PKEY_CTX_ctrl(EVP_PKEY_CTX *ctx, int keytype, int optype,
1269
                      int cmd, int p1, void *p2);
1270
int EVP_PKEY_CTX_ctrl_str(EVP_PKEY_CTX *ctx, const char *type,
1271
                          const char *value);
1272

1273 1274 1275
int EVP_PKEY_CTX_str2ctrl(EVP_PKEY_CTX *ctx, int cmd, const char *str);
int EVP_PKEY_CTX_hex2ctrl(EVP_PKEY_CTX *ctx, int cmd, const char *hex);

1276 1277
int EVP_PKEY_CTX_md(EVP_PKEY_CTX *ctx, int optype, int cmd, const char *md);

1278 1279 1280
int EVP_PKEY_CTX_get_operation(EVP_PKEY_CTX *ctx);
void EVP_PKEY_CTX_set0_keygen_info(EVP_PKEY_CTX *ctx, int *dat, int datlen);

1281
EVP_PKEY *EVP_PKEY_new_mac_key(int type, ENGINE *e,
1282
                               const unsigned char *key, int keylen);
1283

D
Dr. Stephen Henson 已提交
1284 1285
void EVP_PKEY_CTX_set_data(EVP_PKEY_CTX *ctx, void *data);
void *EVP_PKEY_CTX_get_data(EVP_PKEY_CTX *ctx);
1286 1287
EVP_PKEY *EVP_PKEY_CTX_get0_pkey(EVP_PKEY_CTX *ctx);

1288 1289
EVP_PKEY *EVP_PKEY_CTX_get0_peerkey(EVP_PKEY_CTX *ctx);

D
Dr. Stephen Henson 已提交
1290 1291
void EVP_PKEY_CTX_set_app_data(EVP_PKEY_CTX *ctx, void *data);
void *EVP_PKEY_CTX_get_app_data(EVP_PKEY_CTX *ctx);
1292

1293 1294
int EVP_PKEY_sign_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_sign(EVP_PKEY_CTX *ctx,
1295 1296
                  unsigned char *sig, size_t *siglen,
                  const unsigned char *tbs, size_t tbslen);
1297 1298
int EVP_PKEY_verify_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_verify(EVP_PKEY_CTX *ctx,
1299 1300
                    const unsigned char *sig, size_t siglen,
                    const unsigned char *tbs, size_t tbslen);
1301 1302
int EVP_PKEY_verify_recover_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_verify_recover(EVP_PKEY_CTX *ctx,
1303 1304
                            unsigned char *rout, size_t *routlen,
                            const unsigned char *sig, size_t siglen);
1305 1306
int EVP_PKEY_encrypt_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_encrypt(EVP_PKEY_CTX *ctx,
1307 1308
                     unsigned char *out, size_t *outlen,
                     const unsigned char *in, size_t inlen);
1309 1310
int EVP_PKEY_decrypt_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_decrypt(EVP_PKEY_CTX *ctx,
1311 1312
                     unsigned char *out, size_t *outlen,
                     const unsigned char *in, size_t inlen);
1313

1314 1315
int EVP_PKEY_derive_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_derive_set_peer(EVP_PKEY_CTX *ctx, EVP_PKEY *peer);
1316
int EVP_PKEY_derive(EVP_PKEY_CTX *ctx, unsigned char *key, size_t *keylen);
1317

B
Ben Laurie 已提交
1318
typedef int EVP_PKEY_gen_cb(EVP_PKEY_CTX *ctx);
D
Dr. Stephen Henson 已提交
1319 1320 1321 1322 1323 1324 1325

int EVP_PKEY_paramgen_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_paramgen(EVP_PKEY_CTX *ctx, EVP_PKEY **ppkey);
int EVP_PKEY_keygen_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_keygen(EVP_PKEY_CTX *ctx, EVP_PKEY **ppkey);

void EVP_PKEY_CTX_set_cb(EVP_PKEY_CTX *ctx, EVP_PKEY_gen_cb *cb);
1326 1327
EVP_PKEY_gen_cb *EVP_PKEY_CTX_get_cb(EVP_PKEY_CTX *ctx);

D
Dr. Stephen Henson 已提交
1328 1329
int EVP_PKEY_CTX_get_keygen_info(EVP_PKEY_CTX *ctx, int idx);

1330
void EVP_PKEY_meth_set_init(EVP_PKEY_METHOD *pmeth,
1331
                            int (*init) (EVP_PKEY_CTX *ctx));
1332

1333
void EVP_PKEY_meth_set_copy(EVP_PKEY_METHOD *pmeth,
1334 1335
                            int (*copy) (EVP_PKEY_CTX *dst,
                                         EVP_PKEY_CTX *src));
1336

1337
void EVP_PKEY_meth_set_cleanup(EVP_PKEY_METHOD *pmeth,
1338
                               void (*cleanup) (EVP_PKEY_CTX *ctx));
1339 1340

void EVP_PKEY_meth_set_paramgen(EVP_PKEY_METHOD *pmeth,
1341 1342 1343
                                int (*paramgen_init) (EVP_PKEY_CTX *ctx),
                                int (*paramgen) (EVP_PKEY_CTX *ctx,
                                                 EVP_PKEY *pkey));
1344 1345

void EVP_PKEY_meth_set_keygen(EVP_PKEY_METHOD *pmeth,
1346 1347 1348
                              int (*keygen_init) (EVP_PKEY_CTX *ctx),
                              int (*keygen) (EVP_PKEY_CTX *ctx,
                                             EVP_PKEY *pkey));
1349 1350

void EVP_PKEY_meth_set_sign(EVP_PKEY_METHOD *pmeth,
1351 1352 1353 1354 1355
                            int (*sign_init) (EVP_PKEY_CTX *ctx),
                            int (*sign) (EVP_PKEY_CTX *ctx,
                                         unsigned char *sig, size_t *siglen,
                                         const unsigned char *tbs,
                                         size_t tbslen));
1356 1357

void EVP_PKEY_meth_set_verify(EVP_PKEY_METHOD *pmeth,
1358 1359 1360 1361 1362 1363
                              int (*verify_init) (EVP_PKEY_CTX *ctx),
                              int (*verify) (EVP_PKEY_CTX *ctx,
                                             const unsigned char *sig,
                                             size_t siglen,
                                             const unsigned char *tbs,
                                             size_t tbslen));
1364 1365

void EVP_PKEY_meth_set_verify_recover(EVP_PKEY_METHOD *pmeth,
1366 1367 1368 1369 1370 1371 1372 1373 1374 1375
                                      int (*verify_recover_init) (EVP_PKEY_CTX
                                                                  *ctx),
                                      int (*verify_recover) (EVP_PKEY_CTX
                                                             *ctx,
                                                             unsigned char
                                                             *sig,
                                                             size_t *siglen,
                                                             const unsigned
                                                             char *tbs,
                                                             size_t tbslen));
1376 1377

void EVP_PKEY_meth_set_signctx(EVP_PKEY_METHOD *pmeth,
1378 1379 1380 1381 1382 1383
                               int (*signctx_init) (EVP_PKEY_CTX *ctx,
                                                    EVP_MD_CTX *mctx),
                               int (*signctx) (EVP_PKEY_CTX *ctx,
                                               unsigned char *sig,
                                               size_t *siglen,
                                               EVP_MD_CTX *mctx));
1384 1385

void EVP_PKEY_meth_set_verifyctx(EVP_PKEY_METHOD *pmeth,
1386 1387 1388 1389 1390 1391
                                 int (*verifyctx_init) (EVP_PKEY_CTX *ctx,
                                                        EVP_MD_CTX *mctx),
                                 int (*verifyctx) (EVP_PKEY_CTX *ctx,
                                                   const unsigned char *sig,
                                                   int siglen,
                                                   EVP_MD_CTX *mctx));
1392 1393

void EVP_PKEY_meth_set_encrypt(EVP_PKEY_METHOD *pmeth,
1394 1395 1396 1397 1398 1399
                               int (*encrypt_init) (EVP_PKEY_CTX *ctx),
                               int (*encryptfn) (EVP_PKEY_CTX *ctx,
                                                 unsigned char *out,
                                                 size_t *outlen,
                                                 const unsigned char *in,
                                                 size_t inlen));
1400 1401

void EVP_PKEY_meth_set_decrypt(EVP_PKEY_METHOD *pmeth,
1402 1403 1404 1405 1406 1407
                               int (*decrypt_init) (EVP_PKEY_CTX *ctx),
                               int (*decrypt) (EVP_PKEY_CTX *ctx,
                                               unsigned char *out,
                                               size_t *outlen,
                                               const unsigned char *in,
                                               size_t inlen));
1408 1409

void EVP_PKEY_meth_set_derive(EVP_PKEY_METHOD *pmeth,
1410 1411 1412 1413
                              int (*derive_init) (EVP_PKEY_CTX *ctx),
                              int (*derive) (EVP_PKEY_CTX *ctx,
                                             unsigned char *key,
                                             size_t *keylen));
1414 1415

void EVP_PKEY_meth_set_ctrl(EVP_PKEY_METHOD *pmeth,
1416 1417 1418 1419 1420
                            int (*ctrl) (EVP_PKEY_CTX *ctx, int type, int p1,
                                         void *p2),
                            int (*ctrl_str) (EVP_PKEY_CTX *ctx,
                                             const char *type,
                                             const char *value));
1421

1422 1423 1424 1425 1426 1427 1428 1429 1430 1431 1432 1433 1434 1435 1436 1437 1438 1439 1440 1441 1442 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 1453 1454 1455 1456 1457 1458 1459 1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513
void EVP_PKEY_meth_get_init(EVP_PKEY_METHOD *pmeth,
                            int (**pinit) (EVP_PKEY_CTX *ctx));

void EVP_PKEY_meth_get_copy(EVP_PKEY_METHOD *pmeth,
                            int (**pcopy) (EVP_PKEY_CTX *dst,
                                           EVP_PKEY_CTX *src));

void EVP_PKEY_meth_get_cleanup(EVP_PKEY_METHOD *pmeth,
                               void (**pcleanup) (EVP_PKEY_CTX *ctx));

void EVP_PKEY_meth_get_paramgen(EVP_PKEY_METHOD *pmeth,
                                int (**pparamgen_init) (EVP_PKEY_CTX *ctx),
                                int (**pparamgen) (EVP_PKEY_CTX *ctx,
                                                   EVP_PKEY *pkey));

void EVP_PKEY_meth_get_keygen(EVP_PKEY_METHOD *pmeth,
                              int (**pkeygen_init) (EVP_PKEY_CTX *ctx),
                              int (**pkeygen) (EVP_PKEY_CTX *ctx,
                                               EVP_PKEY *pkey));

void EVP_PKEY_meth_get_sign(EVP_PKEY_METHOD *pmeth,
                            int (**psign_init) (EVP_PKEY_CTX *ctx),
                            int (**psign) (EVP_PKEY_CTX *ctx,
                                           unsigned char *sig, size_t *siglen,
                                           const unsigned char *tbs,
                                           size_t tbslen));

void EVP_PKEY_meth_get_verify(EVP_PKEY_METHOD *pmeth,
                              int (**pverify_init) (EVP_PKEY_CTX *ctx),
                              int (**pverify) (EVP_PKEY_CTX *ctx,
                                               const unsigned char *sig,
                                               size_t siglen,
                                               const unsigned char *tbs,
                                               size_t tbslen));

void EVP_PKEY_meth_get_verify_recover(EVP_PKEY_METHOD *pmeth,
                                      int (**pverify_recover_init) (EVP_PKEY_CTX
                                                                    *ctx),
                                      int (**pverify_recover) (EVP_PKEY_CTX
                                                               *ctx,
                                                               unsigned char
                                                               *sig,
                                                               size_t *siglen,
                                                               const unsigned
                                                               char *tbs,
                                                               size_t tbslen));

void EVP_PKEY_meth_get_signctx(EVP_PKEY_METHOD *pmeth,
                               int (**psignctx_init) (EVP_PKEY_CTX *ctx,
                                                      EVP_MD_CTX *mctx),
                               int (**psignctx) (EVP_PKEY_CTX *ctx,
                                                 unsigned char *sig,
                                                 size_t *siglen,
                                                 EVP_MD_CTX *mctx));

void EVP_PKEY_meth_get_verifyctx(EVP_PKEY_METHOD *pmeth,
                                 int (**pverifyctx_init) (EVP_PKEY_CTX *ctx,
                                                          EVP_MD_CTX *mctx),
                                 int (**pverifyctx) (EVP_PKEY_CTX *ctx,
                                                     const unsigned char *sig,
                                                     int siglen,
                                                     EVP_MD_CTX *mctx));

void EVP_PKEY_meth_get_encrypt(EVP_PKEY_METHOD *pmeth,
                               int (**pencrypt_init) (EVP_PKEY_CTX *ctx),
                               int (**pencryptfn) (EVP_PKEY_CTX *ctx,
                                                   unsigned char *out,
                                                   size_t *outlen,
                                                   const unsigned char *in,
                                                   size_t inlen));

void EVP_PKEY_meth_get_decrypt(EVP_PKEY_METHOD *pmeth,
                               int (**pdecrypt_init) (EVP_PKEY_CTX *ctx),
                               int (**pdecrypt) (EVP_PKEY_CTX *ctx,
                                                 unsigned char *out,
                                                 size_t *outlen,
                                                 const unsigned char *in,
                                                 size_t inlen));

void EVP_PKEY_meth_get_derive(EVP_PKEY_METHOD *pmeth,
                              int (**pderive_init) (EVP_PKEY_CTX *ctx),
                              int (**pderive) (EVP_PKEY_CTX *ctx,
                                               unsigned char *key,
                                               size_t *keylen));

void EVP_PKEY_meth_get_ctrl(EVP_PKEY_METHOD *pmeth,
                            int (**pctrl) (EVP_PKEY_CTX *ctx, int type, int p1,
                                           void *p2),
                            int (**pctrl_str) (EVP_PKEY_CTX *ctx,
                                               const char *type,
                                               const char *value));

D
Dr. Stephen Henson 已提交
1514 1515
void EVP_add_alg_module(void);

1516
int ERR_load_EVP_strings(void);
1517

R
Rich Salz 已提交
1518
# ifdef  __cplusplus
1519
}
R
Rich Salz 已提交
1520
# endif
1521
#endif